![Thales ProtectToolkit 5.9.1 Installation And Configuration Manual Download Page 22](http://html1.mh-extra.com/html/thales/protecttoolkit-5-9-1/protecttoolkit-5-9-1_installation-and-configuration-manual_1099198022.webp)
Chapter 2: ProtectServer External 2 Installation and Configuration
CAUTION!
Turning the tamper key from the Active position to the Tamper position deletes
any keys currently stored on the HSM. Deleted keys are not recoverable. Ensure that you
always back up your keys. To avoid accidentally deleting the keys on an operational
ProtectServer External 2, remove the tamper key after commission and store it in a safe
place.
Cryptographic Architecture
A hardware-based cryptographic system consists of three general components:
>
One or more hardware security modules (HSMs) for key processing and storage.
>
High-level cryptographic API software. This software uses the HSM's cryptographic capabilities to provide
security services to applications.
>
Access provider software to allow communication between the API software and the HSMs.
Operating in network mode, a standalone ProtectServer External 2 can provide key processing and storage.
In network mode, access provider software is installed on the machine hosting the cryptographic API software.
The access provider allows communication between the API and the ProtectServer External 2 over a TCP/IP
connection. The HSM can therefore be located remotely, improving the security of cryptographic key data
The figure below depicts a cryptographic service provider using the ProtectServer External 2 in network mode.
Figure 7: ProtectServer External 2 implementation
Technical Specifications
The ProtectServer External 2 specifications are as follows:
Hardware
>
One smart card reader secure USB port (requires the included USB-to-serial cable)
>
Protective, heavy duty steel, industrial PC case
>
Intel® Atom™ CPU E3827 1.74GHz
>
2 GB RAM
>
4 GB solid state flash memory hard disk (DOM)
>
10/100/1000 Mbps autosensing Network Interface with RJ45 LAN connector
Pre-installed Software
>
Linux operating system
>
ProtectServer HSM Access Provider software
Thales ProtectServer HSM 5.9.1 ProtectServer HSM and ProtectToolkit Installation and Configuration Guide
2021-11-02 08:51:40-04:00 Copyright 2009-2021 Thales Group
22